VYPR
Unrated severityNVD Advisory· Published Jan 26, 2026· Updated Jan 26, 2026

Double free in XSLT in 'show_index'

CVE-2025-57785

Description

A Double Free in XSLT show_index has been identified in Hiawatha webserver version 11.7 which allows an unauthenticated attacker to corrupt data which may lead to arbitrary code execution.

Affected products

2
  • Hiawatha/Hiawathallm-create
    Range: =11.7
  • Hiawatha/Hiawatha Web serverv5
    Range: 11.47

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

News mentions

0

No linked articles in our index yet.